SSL Certificate installieren und nutzen

  • Hallo mal wieder,


    ich habe eben mein iMSCP auf die Version 1.2.2. erfolgreich und ohne Fehler geupdated.
    Jetzt wollte ich mein neues Class 2 SSL-Certificate von StartSSL einbinden. Das lässt sich auch ohne Probleme hinzufügen(keine Fehlermeldung).
    Danach steht die Domain allerdings auf "in Bearbeitung". ein Anlegen einer Subdomain und wieder löschen löst das Problem. Danach steht die Domain wieder auf OK.
    Das SSL-Zertifikat wird aber nicht installiert. Es ist immer der Status: Fehler




    Hello again,


    I have just my iMSCP to version 1.2.2. updated successfully with no errors.
    Now I wanted to integrate my new Class 2 SSL Certificate from StartSSL. This can also add without problems (no error message).
    After the domain is available, however, to "in process". applying a subdomain and delete it solves the problem. After the domain is again OK.
    The SSL certificate is not installed. It is always the status: error




    im Certificates_mngr_dmn.log steht:

    Code
    1. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Dir::make: Directory /var/www/imscp/gui/data/certs already exists. Setting its permissions...
    2. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Dir::mode: Changing mode for /var/www/imscp/gui/data/certs to 750
    3. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Dir::owner: Changing owner and group for /var/www/imscp/gui/data/certs to -1:0
    4. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Execute::execute: Executing command: /usr/bin/openssl rsa -in /tmp/9UjA01KXgp -noout -passin file:/tmp/IcS9Zb41D2
    5. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Execute::getExitCode: External command exited with value 0
    6. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Execute::execute: Executing command: /usr/bin/openssl verify -CAfile /tmp/Nzfvpv4His /tmp/3EBrO3YK5c
    7. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::Execute::getExitCode: External command exited with value 2
    8. [Sat Mar 8 19:22:52 2014] [debug] iMSCP::OpenSSL::ssl_check_cert: /tmp/3EBrO3YK5c: description = 0fb3qLHsjkPZbeN8, C = DE, ST = Sachsen, L = Freiberg, O = Daniel Kreutz, CN = www.kreutzweb.de, emailAddress = postmaster@kreutzweb.de
    9. error 20 at 0 depth lookup:unable to get local issuer certificate


    Wie kann ich das Zertifikat funktionsfähig machen?

  • Hello ;


    First, the 1.2.2 version ? Are you sure ???


    Anyway, the error is clear there: Your certificate is wrong (at least, something is wrong)...


    We do not provide free support so, if you need a setup, you'll have to pay. The SSL installer is working as it should.

    badge.php?id=1239063037&bid=2518&key=1747635596&format=png&z=547451206

  • Hello Nuxwin,


    thanks for you answer.
    Yes, i have a future Version of iMCP. I can show you. :D


    Ok ok..... I have i-MSCP 1.1.2 Build: 20140227. This was my mistake.


    I have checked my Certifiate, this is ok. But i found the Error:
    First i had a free Class 1 Certificate from Startssl. Now i have a Class 2.
    I forgot that the intermediate certificate also must be Class 2. (I had Class 1 in it of previously)


    :thumbsup: thank you for iMSCP